Showing posts with label information security. Show all posts
Showing posts with label information security. Show all posts

The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition Review

The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition
Average Reviews:

(More customer reviews)
Are you looking to buy The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition? Here is the right place to find the great deals. we can offer discounts of up to 90% on The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition ReviewI bought this book as a door prize, where Doug is speaking at our request to local security professional trade groups. Have not read it. It's current and relevant to our field, but ... expensive.The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition Overview

Want to learn more information about The Security Risk Assessment Handbook: A Complete Guide for Performing Security Risk Assessments, Second Edition?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks Review

The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks
Average Reviews:

(More customer reviews)
Are you looking to buy The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks? Here is the right place to find the great deals. we can offer discounts of up to 90% on The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks Review"The Hacker's Handbook" is a comprehensive and entertaining volume on security. It has most of the defining traits of a great book, such as clearly stated goal (authors realize that lots of security books are out there and one needs to differentiate) as well as some unique content on application attacks.
The book is a technically sound volume, I found very few factual mistakes. I found some interesting content on central auth servers such as radius, which I haven't seen described well elsewhere. Defensive tool info is a bit jumbled and not new. For example, IDS coverage is too non-specific to be useful. I also found a couple of other chapters a bit weak on interesting content.
The book covers the security field on many levels - from concepts to scripts - and can be successfully used by entry-level people as well as experts. The book is better suited for technologists rather than managers. Security analysts/admins, hands-on security managers, security savvy system and network admins, students of computer security can benefuit from a book.
Anton Chuvakin, Ph.D., GCIA, GCIH is a Senior Security Analyst with a major security information management company. He is the author of the book "Security Warrior" (O'Reilly, 2004). His areas of infosec expertise include intrusion detection, UNIX security, forensics, honeypots, etc. In his spare time, he maintains his security portal info-secure.orgThe Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks Overview

Want to learn more information about The Hacker's Handbook: The Strategy Behind Breaking Into and Defending Networks?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

Defeating the Hacker: A non-technical guide to computer security Review

Defeating the Hacker: A non-technical guide to computer security
Average Reviews:

(More customer reviews)
Are you looking to buy Defeating the Hacker: A non-technical guide to computer security? Here is the right place to find the great deals. we can offer discounts of up to 90% on Defeating the Hacker: A non-technical guide to computer security. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Defeating the Hacker: A non-technical guide to computer security ReviewHave you ever wished for a security book that covers nearly all the potential security risks one can face with computers, but without going into mind-numbing detail on it all? Robert Schifreen does a pretty good job of that in his book Defeating the Hacker : A nontechnical guide to computer security.
Contents: Introduction; A Hacker is Made; Preparation and Planning; International Laws and Standards; Passwords and Beyond; Your Information Security Policy; Security Awareness Training; Patch Management; Windows Workstation Security; Basic Server Security; Understanding Firewalls; Protecting Your Website; Wireless Networking; Penetration Testing; Security Through Obscurity; Windows Vista; Email; The Curse of Spam; Viruses; Spyware, Adware and Rogue Dialers; Piracy; File Sharing and 'P2P'; Backups and Archives; Preventing Internet Misuse; Document Security; Data Theft; Encryption; Employees' Own Computers; How Hackers Use Search Engines; Denial of Service Attacks; Provisioning and Identity Management; Data Interception; Out of the Office; Social Engineering; E-Commerce Fraud; Intrusion Detection Systems; Outsourcing; Securing your Premises; Forensics; Planning for the Worst; Hardware Theft; Let's Be Careful Out There; Index
As you can see from the table of contents, Schifreen covers quite a bit of ground. Each chapter is relatively short (7 to 10 pages) and covers the subject from a conceptual and practical view. It's more along the lines of "here's a problem, here's how it affects you, and here's what you need to do to address it in your organization." Schifreen was an active hacker who has turned "white hat", so it's not like all this is just theoretical material that he's not actually experienced. He's done a lot (most?) of this stuff at one time or another, so he knows of what he speaks. It's also somewhat unique in that it views things from a distinctly English viewpoint. Since he lives in Great Britain, his writing and choice of words are a little unusual to an American. For instance, taking something to the dump is referred to as the "tip". Prices are stated in pounds, and many of the examples are located in various places in Europe. This particular slant will probably be welcomed by those who are tired of authors who assume that the United States is where all IT takes place.
The only real issue I have with the book is the stated target audience. It is indeed a nontechnical guide to IT security, and much of the emphasis is on protecting your organization. I'm not sure how much value an organization would get out of this unless you're a small shop who really hasn't thought much about your computer(s). For a large organization, there's not enough here to allow you to implement solutions completely (from a technical perspective), and you probably already have techno-geeks that do that. For the small shop, this would open your eyes to potential problems, but again there might not be enough to allow the non-techy user to properly implement AND maintain their security. Still, if the reader is someone who really hasn't thought much about computer security beyond the occasional virus scan, this book will open their eyes.
Good book, and surprisingly readable given the amount of material covered. Just don't go into it thinking that this single book will make your company hack-proof and turn you into a security expert...Defeating the Hacker: A non-technical guide to computer security Overview

Want to learn more information about Defeating the Hacker: A non-technical guide to computer security?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

FISMA Principles and Best Practices: Beyond Compliance Review

FISMA Principles and Best Practices: Beyond Compliance
Average Reviews:

(More customer reviews)
Are you looking to buy FISMA Principles and Best Practices: Beyond Compliance? Here is the right place to find the great deals. we can offer discounts of up to 90% on FISMA Principles and Best Practices: Beyond Compliance. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

FISMA Principles and Best Practices: Beyond Compliance Reviewthis is one of the better titles on FISMA.
If you work in the govt. arena and have to deal with FISMA, check this book out.
Written by an insider who knows his stuff.FISMA Principles and Best Practices: Beyond Compliance Overview

Want to learn more information about FISMA Principles and Best Practices: Beyond Compliance?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

Hacking the Human Review

Hacking the Human
Average Reviews:

(More customer reviews)
Are you looking to buy Hacking the Human? Here is the right place to find the great deals. we can offer discounts of up to 90% on Hacking the Human. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

Hacking the Human ReviewI enjoyed reading this book far more than I had anticipated, it is a thriller and an amazing window into the humans psyche.
Hacking the Human is a book about Social Engineering Techniques and Security Countermeasures. It should be a must read to all Physical security management, and Information security professionals, I always thought it would be really hard to map the ISO27002 controls with Social Engineering and yet the entire book is written around the ISO27001 standards this alone is worth the price (little high) of the book.
The book is divided into 3 sections
.- The Risks
.- Understanding Human Vulnerabilities
.- Countermeasures
I wish I could tell you which section or what chapter is important so you don't have to read the whole thing, but I couldn't they are all equally important. Except for some deviations away from information security topics the entire book is like a Symphony by Mozart; Mozart's question sums it all up "Which few did you have in mind, Majesty? " when told by Emperor Joseph II "Your work is ingenious. It's quality work. And there are simply too many notes, that's all. Just cut a few and it will be perfect."
You may say "....but I have read The Art of Deception by Kevin D. Mitnick (and William L. Simon)" which was a great book and also a must read to further learn the human behavior, however in comparison to the Hacking the Human they are totally different. Kevin does not dwell on standards simply concentrates on the brain's vulnerabilities, Ian on the other hand wrote the book as a manual for an existing Information Security Management System, he is even almost apologetic for headlining risks identified "which may not be fully ISO 27001 compliant risk assessment" as seen in chapter 12 - Testing.
I seriously recommend this book as a great Information Security learning tool. Can also come in handy for Poker players.
Best Fishes and thank you for reading.
Hacking the Human Overview

Want to learn more information about Hacking the Human?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...

CEH Certified Ethical Hacker All-in-One Exam Guide Review

CEH Certified Ethical Hacker All-in-One Exam Guide
Average Reviews:

(More customer reviews)
Are you looking to buy CEH Certified Ethical Hacker All-in-One Exam Guide? Here is the right place to find the great deals. we can offer discounts of up to 90% on CEH Certified Ethical Hacker All-in-One Exam Guide. Check out the link below:

>> Click Here to See Compare Prices and Get the Best Offers

CEH Certified Ethical Hacker All-in-One Exam Guide ReviewI passed the CEHv7 certification test through self-study using only this book as a study guide.
Note that I have *a lot* of InfoSec experience--including CISSP and OSCP certifications--but in my opinion, mastery of the material in this book, including the concepts covered in the end-of-chapter questions and ~ 150 sample test questions on the included MasterExam test, *should* allow you to pass the test.
The book is well-written and concise considering the breadth of material the CEHv7 covers.
I recommend this book for anyone pursuing their CEHv7 certification.CEH Certified Ethical Hacker All-in-One Exam Guide Overview

Want to learn more information about CEH Certified Ethical Hacker All-in-One Exam Guide?

>> Click Here to See All Customer Reviews & Ratings Now
Read More...